CVE Database

132723+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-79149
9.6 CRITICAL

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79148
9.1 CRITICAL

Off-by-one error in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially read memory inside the sandbox via …

Aug 25, 2026
CVE-2026-79147
5.3 MEDIUM

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information …

Aug 25, 2026
CVE-2026-79146
5.5 MEDIUM

Information leak in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. …

Aug 25, 2026
CVE-2026-79144
4.3 MEDIUM

Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79143
4.3 MEDIUM

Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted …

Aug 25, 2026
CVE-2026-79142
8.8 HIGH

Buffer overflow in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via …

Aug 25, 2026
CVE-2026-79141
4.3 MEDIUM

Incorrect authorization in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79140
9.6 CRITICAL

Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-79139
7.5 HIGH

Improper input validation in Media in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79138
9.6 CRITICAL

Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside …

Aug 25, 2026
CVE-2026-79137
4.3 MEDIUM

Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted …

Aug 25, 2026
CVE-2026-79136
4.3 MEDIUM

Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79134
6.5 MEDIUM

Incorrect authorization in GetUserMedia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79133
6.5 MEDIUM

Incorrect authorization in Forms in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79132
8.3 HIGH

Improper input validation in Input in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79131
9.6 CRITICAL

Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-79130
9.6 CRITICAL

Buffer overflow in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-79129
9.6 CRITICAL

Use after free in Sessions in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code …

Aug 25, 2026
CVE-2026-79128
9.6 CRITICAL

Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-79127
8.8 HIGH

Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-79126
5.9 MEDIUM

Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially obtain sensitive information …

Aug 25, 2026
CVE-2026-79125
6.5 MEDIUM

Information leak in XR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79124
6.5 MEDIUM

Information leak in Intents in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to leak sensitive information via a crafted HTML …

Aug 25, 2026
CVE-2026-79123
6.5 MEDIUM

Improper input validation in NTP Footer in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process …

Aug 25, 2026
CVE-2026-79122
5.9 MEDIUM

Information leak in SignIn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via crafted network traffic. (Chromium security severity: …

Aug 25, 2026
CVE-2026-79121
8.3 HIGH

Improper input validation in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary …

Aug 25, 2026
CVE-2026-79120
6.5 MEDIUM

Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain cross-origin data via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79119
8.8 HIGH

Use after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79118
4.3 MEDIUM

Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79117
4.3 MEDIUM

Race condition in WebAppInstalls in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy …

Aug 25, 2026
CVE-2026-79116
4.3 MEDIUM

Missing authorization in Viz in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy …

Aug 25, 2026
CVE-2026-79112
6.5 MEDIUM

Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to read memory …

Aug 25, 2026
CVE-2026-79111
9.6 CRITICAL

Improper input validation in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-79110
4.3 MEDIUM

Missing authorization in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79109
8.3 HIGH

Improper input validation in Printing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary …

Aug 25, 2026
CVE-2026-79108
6.5 MEDIUM

UI misrepresentation in Web Authentication (Passkeys & Security Keys) in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system …

Aug 25, 2026
CVE-2026-79107
6.5 MEDIUM

Incorrect authorization in TabGroups in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially leak sensitive information via crafted network traffic. (Chromium security …

Aug 25, 2026
CVE-2026-79106
4.3 MEDIUM

Improper input validation in Input in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering …

Aug 25, 2026
CVE-2026-79105
4.3 MEDIUM

Improper input validation in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a …

Aug 25, 2026
CVE-2026-79104
5.3 MEDIUM

Missing authorization in Sensor in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via …

Aug 25, 2026
CVE-2026-79103
3.1 LOW

Incorrect reference resolution in Speech in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation …

Aug 25, 2026
CVE-2026-79099
6.5 MEDIUM

Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79098
4.3 MEDIUM

UI misrepresentation in PermissionElement in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML …

Aug 25, 2026
CVE-2026-79097
8.8 HIGH

Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79095
4.3 MEDIUM

Information leak in Payments in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79094
6.5 MEDIUM

Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79093
4.3 MEDIUM

Incorrect authorization in Paint in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. …

Aug 25, 2026
CVE-2026-79091
9.6 CRITICAL

Use after free in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code …

Aug 25, 2026
CVE-2026-79090
9.8 CRITICAL

Improper privilege management in Actor in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a …

Aug 25, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.